Skip to content
Signals
Monitoring NVD, CISA KEV, EPSS and the Dragons Community ransomware tracker in near-real timeMonitoring NVD, CISA KEV, EPSS and the Dragons Community ransomware tracker in near-real time

Vendors · fortinet

fortinet

· 74 Critical

Total CVEs

1,123

Critical

74

Products

255

Search All CVEs →

1,123

Products (255)

fortios271 CVEsfortiweb124 CVEsfortiproxy118 CVEsfortimanager114 CVEsfortianalyzer93 CVEsforticlient87 CVEsfortisandbox60 CVEsfortimail46 CVEsfortiportal45 CVEsfortiadc44 CVEsfortisoar31 CVEsfortinac30 CVEsfortisiem29 CVEsfortimanager cloud27 CVEsfortipam25 CVEsfortivoice24 CVEsfortiwlm23 CVEsfortiauthenticator23 CVEsfortiswitchmanager19 CVEsfortinet antivirus18 CVEsfortianalyzer cloud17 CVEsfortitester16 CVEsfortiwan16 CVEsfortimanager firmware15 CVEsfortiswitch14 CVEsfortiwlc14 CVEsforticlientems13 CVEsfortianalyzer big data13 CVEsfortinac-f12 CVEsfortirecorder12 CVEsfortianalyzer firmware12 CVEsfortideceptor11 CVEsfortindr11 CVEsfortisase10 CVEsfortiisolator10 CVEsfortiap-w29 CVEsfortisandbox cloud9 CVEsfortiap7 CVEsfortiextender firmware7 CVEsfortiedr7 CVEsfortiddos-f7 CVEsfortiextender7 CVEsforticlient enterprise management server7 CVEsfortiap-u7 CVEsforticlient endpoint management server6 CVEsfortiap-s6 CVEsfortiadc firmware5 CVEsfortiddos5 CVEsfcm-mb405 CVEsfortirecorder firmware5 CVEsfcm-mb40 firmware5 CVEsfortidlp agent4 CVEsfortisra4 CVEsfortiwebmanager4 CVEsfortiaiops4 CVEsfortimanager 3000f3 CVEsfortimanager 2000e3 CVEsfortimanager 200d3 CVEsfortimanager 300e3 CVEsfortimanager 3900e3 CVEsfortimanager 400e3 CVEsfortitoken mobile3 CVEsfortibalancer 10003 CVEsfortibalancer 1000 firmware3 CVEsfortibalancer 20003 CVEsfortibalancer 2000 firmware3 CVEsfortibalancer 30003 CVEsfortibalancer 3000 firmware3 CVEsfortibalancer 4003 CVEsfortibalancer 400 firmware3 CVEsfortigate-3140b2 CVEsfortigate-3240c2 CVEsfortigate-20c2 CVEsfortiadc-4000d2 CVEsfortigate-200b2 CVEsfortigate-1240b2 CVEsfortigate-3810a2 CVEsfortisandbox paas2 CVEsfortigate-110c2 CVEsfortigate-3950b2 CVEsfortiadc-300e2 CVEsfortigaterugged-100c2 CVEsfortigate-100d2 CVEsfortigate-40c2 CVEsfortigate-5001a-sw2 CVEsfortigate-1000c2 CVEsfortiadc-200d2 CVEsfortiswitchaxfixed2 CVEsfortigate2 CVEsfortiadc-2000d2 CVEsfortigate-voice-80c2 CVEsfortiadc-1500d2 CVEsfortigate 60f2 CVEsfortiadc-1000e2 CVEsfortigate-5001b2 CVEsforticlientems cloud2 CVEsfortigate 40f2 CVEsfortigate-50202 CVEsforticlient sslvpn client2 CVEsfortigate-50602 CVEsfortigate-50b2 CVEsfortigate-5101c2 CVEsfortigate-5140b2 CVEsfortigate-600c2 CVEsfortiadc manager2 CVEsfortigate-60c2 CVEsfortigate-620b2 CVEsfortigate 3600e2 CVEsfortiap-c2 CVEsfortigate 3300e2 CVEsfortigate 2200e2 CVEsfortigate 1800f2 CVEsforticamera firmware2 CVEsfortiadc-600e2 CVEsantivirus engine2 CVEsfortigate-800c2 CVEsfortigate-80c2 CVEsfortigate-311b2 CVEsfortigate-310b2 CVEsfortios-6k7k2 CVEsfortios ips engine2 CVEsfortigate-3040b2 CVEsfortigate-300c2 CVEsfortipresence2 CVEsforticamera2 CVEsfortiadc-400e2 CVEsfsw-r-112d-poe1 CVEsmeru1 CVEsmeru firmware1 CVEssingle sign on1 CVEsconnect1 CVEscoyote point equalizer1 CVEscoyote point equalizer firmware1 CVEsfim-7901e1 CVEsfim-7904e1 CVEsfim-7910e1 CVEsfim-7920e1 CVEsfim-7921f1 CVEsfim-7941f1 CVEsfortiadc-700d1 CVEsfortiai1 CVEsfortiai 3500f1 CVEsfortiai firmware1 CVEsfortianalyzer-1000d1 CVEsfortianalyzer-2000b1 CVEsfortianalyzer-200d1 CVEsfortianalyzer-3000d1 CVEsfortianalyzer-300d1 CVEsfortianalyzer-4000b1 CVEsfortiauthenticator agent for microsoft outlook web access1 CVEsforticlient emergency management server1 CVEsforticlient host security1 CVEsforticlient lite1 CVEsforticlient ssl vpn1 CVEsforticlient virtual private network1 CVEsforticonverter1 CVEsfortidb1 CVEsfortiddos-cm1 CVEsfortiedrmanager1 CVEsfortifone softclient1 CVEsfortigate-10001 CVEsfortigate-1100e1 CVEsfortigate-200f1 CVEsfortigate-2600f1 CVEsfortigate-3500f1 CVEsfortigate-400e1 CVEsfortigate-600e1 CVEsfortigate-6300f1 CVEsfortigate-6300f-dc1 CVEsfortigate-6500f1 CVEsfortigate-6500f-dc1 CVEsfortigate-6501f1 CVEsfortigate-6501f-dc1 CVEsfortigate-6601f1 CVEsfortigate-6601f-dc1 CVEsfortigate-7030e1 CVEsfortigate-7040e1 CVEsfortigate-7060e1 CVEsfortigate-7121f1 CVEsfortigate 1000d1 CVEsfortigate 100e1 CVEsfortigate 100f1 CVEsfortigate 1100e1 CVEsfortigate 1500d1 CVEsfortigate 2000e1 CVEsfortigate 200e1 CVEsfortigate 3000d1 CVEsfortigate 3400e1 CVEsfortigate 3700d1 CVEsfortigate 3960e1 CVEsfortigate 3980e1 CVEsfortigate 400e1 CVEsfortigate 4200f1 CVEsfortigate 5001d1 CVEsfortigate 5001e1 CVEsfortigate 5001e11 CVEsfortigate 5053b1 CVEsfortigate 50601 CVEsfortigate 50e1 CVEsfortigate 5144c1 CVEsfortigate 60001 CVEsfortigate 600e1 CVEsfortigate 60e1 CVEsfortigate 6300f1 CVEsfortigate 6500f1 CVEsfortigate 70001 CVEsfortigate 7040e1 CVEsfortigate 7060e1 CVEsfortigate 7121f1 CVEsfortigate 80e1 CVEsfortigate 80f1 CVEsfortiguard antivirus1 CVEsfortiguest1 CVEsfortimail-2000b1 CVEsfortimail-200d1 CVEsfortimail-400c1 CVEsfortimail-5002b1 CVEsfortimail-vm20001 CVEsfortinet1 CVEsfortinet281 CVEsfortinet firewall1 CVEsfortinet single sign-on1 CVEsfortirecorder 100d1 CVEsfortirecorder 200d1 CVEsfortirecorder 400d1 CVEsfortisandbox firmware1 CVEsfortisdnconnector1 CVEsfortisiem windows agent1 CVEsfortisoar agent communication bridge1 CVEsfortisoar imap connector1 CVEsfortiweb manager1 CVEsfortiwlc-sd1 CVEsfpm-7620e1 CVEsfpm-7620f1 CVEsfpm-7630e1 CVEsfsw-1024d1 CVEsfsw-1048d1 CVEsfsw-108d-poe1 CVEsfsw-124d1 CVEsfsw-124d-poe1 CVEsfsw-224d-fpoe1 CVEsfsw-224d-poe1 CVEsfsw-248d-fpoe1 CVEsfsw-248d-poe1 CVEsfsw-3032d1 CVEsfsw-424d1 CVEsfsw-424d-fpoe1 CVEsfsw-424d-poe1 CVEsfsw-448d1 CVEsfsw-448d-fpoe1 CVEsfsw-448d-poe1 CVEsfsw-524d1 CVEsfsw-524d-fpoe1 CVEsfsw-548d1 CVEsfsw-548d-fpoe1 CVEs

Recent Vulnerabilities

View all 1,123
CVE-2026-49938MEDIUM 6.5

A improper access control vulnerability in Fortinet FortiPortal 7.4.0 through 7.4.7, FortiPortal 7.2.0 through 7.2.8, FortiPortal 7.0 all versions may allow attacker to improper access control via <insert attack vector here>

CVE-2026-25089CRITICAL 9.8

A improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.5, FortiSandbox 4.4.0 through 4.4.8, FortiSandbox 4.2 all versions, FortiSandbox Cloud 5.0.4 through 5.0.5, FortiSandbox PaaS 5.0.4 through 5.0.5 may allow an unauthenticated attacker to execute unauthorized commands via specifically crafted HTTP requests

CVE-2025-67862MEDIUM 6.7

An Internal Asset Exposed to Unsafe Debug Access Level or State vulnerability [CWE-1244] vulnerability in Fortinet FortiOS 7.6.0 through 7.6.2, FortiOS 7.4.0 through 7.4.7, FortiOS 7.2.0 through 7.2.10, FortiOS 7.0.0 through 7.0.16, FortiOS 6.4 all versions, FortiProxy 7.6.0 through 7.6.3, FortiProxy 7.4.0 through 7.4.10, FortiProxy 7.2.0 through 7.2.14, FortiProxy 7.0 all versions may allow an authenticated admin to execute lua scripts via crafted CLI commands.

CVE-2026-44279MEDIUM 5.5

A improper export of android application components vulnerability in Fortinet FortiTokenAndroid 6.2 all versions, FortiTokenAndroid 6.1 all versions, FortiTokenAndroid 5.2 all versions may allow attacker to improper access control via <insert attack vector here>

CVE-2026-44278LOW 2.3

A use of hard-coded cryptographic key vulnerability in Fortinet FortiClientWindows 7.4.0 through 7.4.2, FortiClientWindows 7.2 all versions may allow attacker to information disclosure via <insert attack vector here>

CVE-2026-44277CRITICAL 9.8

A improper access control vulnerability in Fortinet FortiAuthenticator 8.0.2, FortiAuthenticator 8.0.0, FortiAuthenticator 6.6.0 through 6.6.8, FortiAuthenticator 6.5.0 through 6.5.6 may allow attacker to execute unauthorized code or commands via crafted requests.

CVE-2026-26083CRITICAL 9.8

A missing authorization vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.1, FortiSandbox 4.4.0 through 4.4.8, FortiSandbox Cloud 5.0.2 through 5.0.5, FortiSandbox PaaS 23.4 all versions, FortiSandbox PaaS 23.3 all versions, FortiSandbox PaaS 23.1 all versions, FortiSandbox PaaS 22.2 all versions, FortiSandbox PaaS 22.1 all versions, FortiSandbox PaaS 21.4 all versions, FortiSandbox PaaS 21.3 all versions, FortiSandbox PaaS 5.0.0 through 5.0.1, FortiSandbox PaaS 4.4.5 through 4.4.8 may allow an unauthenticated attacker to execute unauthorized code or commands via HTTP requests.

CVE-2026-25690MEDIUM 4.3

An improper neutralization of argument delimiters in a command ('argument injection') vulnerability in Fortinet FortiDeceptor 6.0.0 through 6.0.2, FortiDeceptor 5.3.0 through 5.3.3, FortiDeceptor 5.2.0 through 5.2.1, FortiDeceptor 5.1 all versions, FortiDeceptor 5.0 all versions may allow an authenticated attacker with at least read-only admin permission to read log files via HTTP crafted requests.

CVE-2026-25088MEDIUM 5.4

An improper neutralization of special elements used in an sql command ('sql injection') vulnerability in Fortinet FortiNDR 7.6.0 through 7.6.2, FortiNDR 7.4.0 through 7.4.9, FortiNDR 7.2 all versions, FortiNDR 7.1 all versions, FortiNDR 7.0 all versions may allow an authenticated attacker to execute unauthorized code or commands via specifically crafted HTTP requests.

CVE-2025-67604MEDIUM 5.3

A use of potentially dangerous function vulnerability in Fortinet FortiAnalyzer 7.6.0 through 7.6.4, FortiAnalyzer 7.4.0 through 7.4.8, FortiAnalyzer 7.2 all versions, FortiAnalyzer 7.0 all versions, FortiAnalyzer 6.4 all versions, FortiManager 7.6.0 through 7.6.4, FortiManager 7.4.0 through 7.4.8, FortiManager 7.2 all versions, FortiManager 7.0 all versions, FortiManager 6.4 all versions may allow an authenticated attacker to cause a system hang via multiple specially crafted HTTP requests causing crashes. This happens if internal locks are aligned, which is out of control of the attacker.

CVE-2025-53870MEDIUM 6.7

An improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet FortiAP 7.6.0 through 7.6.2, FortiAP 7.4.0 through 7.4.5, FortiAP 7.2 all versions, FortiAP 7.0 all versions, FortiAP 6.4 all versions, FortiAP-W2 7.4.0 through 7.4.4, FortiAP-W2 7.2 all versions, FortiAP-W2 7.0 all versions may allow an authenticated attacker to execute unauthorized code or commands via a specifically crafted cli command.

CVE-2025-53844HIGH 8.8

A out-of-bounds write vulnerability in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4.0 through 7.4.8, FortiOS 7.2.0 through 7.2.11 allows attacker to execute unauthorized code or commands via specially crafted packets.

CVE-2025-53681HIGH 7.2

An improper neutralization of special elements used in an SQL Command ("SQL Injection&") vulnerability [CWE-89] vulnerability in Fortinet FortiMail 7.6.0 through 7.6.3, FortiMail 7.4.0 through 7.4.5, FortiMail 7.2.0 through 7.2.8 allows an authenticated privileged attacker to execute unauthorized code or commands via specifically crafted HTTP or HTTPS requests.

CVE-2025-53680MEDIUM 6.7

An improper neutralization of special elements used in an OS command ("OS Command Injection") vulnerability [CWE-78] vulnerability in Fortinet FortiAP 7.6.0 through 7.6.2, FortiAP 7.4.0 through 7.4.5, FortiAP 7.2 all versions, FortiAP 7.0 all versions, FortiAP 6.4 all versions, FortiAP-U 7.0.0 through 7.0.5, FortiAP-U 6.2 all versions, FortiAP-W2 7.4.0 through 7.4.4, FortiAP-W2 7.2 all versions, FortiAP-W2 7.0 all versions allows an authenticated privileged attacker to execute unauthorized code or commands via crafted CLI requests.

CVE-2026-40688HIGH 7.2

An out-of-bounds write vulnerability [CWE-787] vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.3, FortiWeb 7.6.0 through 7.6.6, FortiWeb 7.4.0 through 7.4.11 may allow a remote privileged attacker to execute arbitrary code or command via crafted HTTP requests.

CVE-2026-39815HIGH 8.8

A improper neutralization of special elements used in an sql command ('sql injection') vulnerability in Fortinet FortiDDoS-F 7.2.1 through 7.2.2 may allow attacker to execute unauthorized code or commands via sending crafted HTTP requests

CVE-2026-39814MEDIUM 6.7

A relative path traversal vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.2, FortiWeb 7.6.0 through 7.6.6, FortiWeb 7.4.1 through 7.4.12, FortiWeb 7.2.7 through 7.2.12, FortiWeb 7.0.10 through 7.0.12 may allow attacker to execute unauthorized code or commands via <insert attack vector here>

CVE-2026-39813CRITICAL 9.8

A path traversal: '../filedir' vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.5, FortiSandbox 4.4.0 through 4.4.8 may allow attacker to escalation of privilege via <insert attack vector here>

CVE-2026-39812MEDIUM 4.8

A improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.5, FortiSandbox 4.4.0 through 4.4.8, FortiSandbox 4.2 all versions, FortiSandbox PaaS 5.0.0 through 5.0.5, FortiSandbox PaaS 4.4.0 through 4.4.8, FortiSandbox PaaS 4.2 all versions may allow attacker to execute unauthorized code or commands via <insert attack vector here>

CVE-2026-39811MEDIUM 4.9

A integer overflow or wraparound vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.3, FortiWeb 7.6.0 through 7.6.6, FortiWeb 7.4 all versions, FortiWeb 7.2 all versions, FortiWeb 7.0 all versions may allow attacker to denial of service via <insert attack vector here>

CVE-2026-39810MEDIUM 6.0

A use of hard-coded cryptographic key vulnerability in Fortinet FortiClientEMS 7.4.0 through 7.4.5 may allow attacker to information disclosure via decrypting database dump.

CVE-2026-39809MEDIUM 6.7

A improper neutralization of special elements used in an sql command ('sql injection') vulnerability in Fortinet FortiClientEMS 7.4.0 through 7.4.5, FortiClientEMS 7.2.0 through 7.2.12, FortiClientEMS 7.0 all versions may allow attacker to execute unauthorized code or commands via sending crafted requests

CVE-2026-39808CRITICAL 9.8

A improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet FortiSandbox 4.4.0 through 4.4.8 may allow attacker to execute unauthorized code or commands via <insert attack vector here>

CVE-2026-27316LOW 2.7

A insufficiently protected credentials vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.5, FortiSandbox 4.4 all versions, FortiSandbox PaaS 5.0.1 through 5.0.5 may allow an authenticathed administrator to read LDAP server credentials via client-side inspection.

CVE-2026-25691MEDIUM 6.7

A improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.5, FortiSandbox 4.4.0 through 4.4.8, FortiSandbox 4.2 all versions, FortiSandbox Cloud 5.0.4, FortiSandbox PaaS 5.0.4 may allow a privileged attacker with super-admin profile and CLI access to delete an arbitrary directory via HTTP crafted requests.